CVE-2006-5852

OpenBase SQL <10.0.1 - Privilege Escalation

Title source: llm

Description

Untrusted search path vulnerability in openexec in OpenBase SQL before 10.0.1 allows local users to gain privileges via a modified PATH that references a malicious helper binary, as demonstrated by (1) cp, (2) rm, and (3) killall, different vectors than CVE-2006-5327.

Exploits (1)

exploitdb WORKING POC VERIFIED
by Kevin Finisterre · perllocalosx
https://www.exploit-db.com/exploits/2738

Scores

EPSS 0.0036
EPSS Percentile 58.3%

Details

Status published
Products (4)
openbase_international_ltd/openbase 7.0.15
openbase_international_ltd/openbase 8.0.4
openbase_international_ltd/openbase 9.1.5
openbase_international_ltd/openbase 10.0
Published Nov 10, 2006
Tracked Since Feb 18, 2026